Zlob.Trojan

Zlob.Trojan Description

ScreenshotZlob.Trojan is a malicious and extremely dangerous Trojan horse program that installs itself secretly on your computer. Zlob.Trojan then opens up a backdoor security hole, allowing remote attackers to control your computer, execute programs, download additional malware, and steal personal data and credit card information. Zlob.Trojan may also install rogue anti-spyware programs and open excessive pop-up advertisements trying to get you to register them. Zlob is known to be affiliated with SysProtectionPage.com, Systemuptodate.com, Safetyuptodate.com, ULWindowSeek.com, ULWindowURL.com, SysUpdateCenter.com, SysNetSecurity.com, Securityuptodate.com, Guarduptodate.com, Necessaryupdates.com, dlpatch.com, and Vundo.

ScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshot

Aliases


Trojan.Bredolab.Gen!Pac.3TROJ_FAKEAL.SMAC [TrendMicro]Trojan.Win32.Bredolab.Gen.pac (v) [Sunbelt]Sus/UnkPack-C [Sophos]Gen:Variant.Renos.21 [BitDefender]Trojan.Renos.Gen.15Mal/Cognac-A [Sophos]TrojanDownloader:Win32/Renos.DZ [Microsoft]W32/Heuristic-USU!Eldorado [Authentium]BKDR_ULTIMATE.CJ [TrendMicro]a variant of Win32/Kryptik.AGY [NOD32]Artemis!135C4E5F27D7 [McAfee+Artemis]Backdoor.Win32.UltimateDefender.yt [F-Secure]Trojan.Generic.2333096 [BitDefender]Generic14.ALSK [AVG]
More aliases (3123)

Use SpyHunter to Detect and Remove PC Threats

If you are concerned that malware or PC threats similar to Zlob.Trojan may have infected your computer, we recommend you start an in-depth system scan with SpyHunter. SpyHunter is an advanced malware protection and remediation application that offers subscribers a comprehensive method for protecting PCs from malware, in addition to providing one-on-one technical support service.

Download SpyHunter's Malware Scanner

Note: SpyHunter's free version is only for malware detection. If SpyHunter detects malware on your PC, you will need to purchase SpyHunter's malware tool to remove the malware threats. Learn more on SpyHunter. If you would like to uninstall SpyHunter for any reason, please follow these uninstall instructions. To learn more about our policies and practices, visit our EULA, Privacy Policy and Threat Assessment Criteria.

Why can't I open any program including SpyHunter? You may have a malware file running in memory that kills any programs that you try to launch on your PC. Tip: Download SpyHunter from a clean computer, copy it to a USB thumb drive, DVD or CD, then install it on the infected PC and run SpyHunter's malware scanner.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



msmsgs.exe File name: msmsgs.exe
Size: 5.48 KB (5481 bytes)
MD5: 91e2a8128cde75db5f1e8831a3cc615a
Detection count: 86
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 19, 2010
rxjddnvj.exe File name: rxjddnvj.exe
Size: 89.61 KB (89617 bytes)
MD5: 0e4ade1afcd2855a36e816d9f80e1f9c
Detection count: 76
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: February 18, 2010
gtxiz.exe File name: gtxiz.exe
Size: 14.33 KB (14336 bytes)
MD5: 373437440d4794d7f595d12b3931b6bb
Detection count: 75
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
lsass.exe File name: lsass.exe
Size: 351.74 KB (351744 bytes)
MD5: 3d270fc3baae30934b28d6d7da554acf
Detection count: 71
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: January 21, 2010
pg32.exe File name: pg32.exe
Size: 84.99 KB (84992 bytes)
MD5: 938e4635667ad33133f42221d0c347eb
Detection count: 70
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: January 8, 2010
kgqfweltgbn.dll File name: kgqfweltgbn.dll
Size: 307.2 KB (307200 bytes)
MD5: 43c814a008c3df5526f5dc3f5f748bce
Detection count: 51
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
qrzsyr.dll File name: qrzsyr.dll
Size: 19.45 KB (19456 bytes)
MD5: 4fd5a45a4a58d5a02e1fdc03bbd119f9
Detection count: 50
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
awlpwn.exe File name: awlpwn.exe
Size: 157.18 KB (157184 bytes)
MD5: 06872765fe8301f2715c818d8c02fecf
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: June 29, 2010
394559.dll File name: 394559.dll
Size: 13.31 KB (13312 bytes)
MD5: 39e90955020d8f5f2fea404f657bbfeb
Detection count: 34
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
286858.dll File name: 286858.dll
Size: 13.82 KB (13824 bytes)
MD5: 19fe7fcc23afa9ecaf1093d9f7241b1b
Detection count: 32
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
382077.dll File name: 382077.dll
Size: 13.31 KB (13312 bytes)
MD5: c0c37dec2ef1f6f1cb775c450a807764
Detection count: 30
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
nldfmtapowe.dll File name: nldfmtapowe.dll
Size: 241.66 KB (241664 bytes)
MD5: 4f05b3f81d5c5de25aeb8e4e12b1fa40
Detection count: 26
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
409271.dll File name: 409271.dll
Size: 13.31 KB (13312 bytes)
MD5: 4705e0b048cbf041516812a6a3966a5d
Detection count: 26
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
WinAvXX.exe File name: WinAvXX.exe
Size: 7.68 KB (7680 bytes)
MD5: c99587940a6109a9b6274329863fe69f
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
ywzE.tmp File name: ywzE.tmp
Size: 23.04 KB (23040 bytes)
MD5: 30dd0e96b116d9364882aa034e9b3b3d
Detection count: 22
File type: Temporary File
Mime Type: unknown/tmp
Group: Malware file
Last Updated: December 11, 2009
sysrest32.exe File name: sysrest32.exe
Size: 34.3 KB (34304 bytes)
MD5: 8076ca097c94e04e176c0819773a6386
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
ecjew.exe File name: ecjew.exe
Size: 23.55 KB (23552 bytes)
MD5: 6649a292ee55554b0a408c075341a85f
Detection count: 10
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: February 12, 2010
wmsdkns.exe File name: wmsdkns.exe
Size: 89.51 KB (89511 bytes)
MD5: 93520a7297b2be9a4878b2910c4f8e63
Detection count: 6
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: February 12, 2010
iftuyszv.exe File name: iftuyszv.exe
Size: 87.51 KB (87511 bytes)
MD5: 7cc85491b5a4c2c4ecbfdd4848a89b06
Detection count: 3
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: February 12, 2010

More files

Registry Modifications


The following newly produced Registry Values are:

Cookiesgayfetishmaletube4freemalwarealarmvcodecDirectory%AllUsersProfile%\Start Menu\Programs\patrickxxx777123%ProgramFiles%\DirectAccess%ProgramFiles%\GimMePorn%ProgramFiles%\LPVideoPlugin%ProgramFiles%\NetProject%ProgramFiles%\Online Image Add-on%ProgramFiles%\Online Video Add-on%ProgramFiles%\patrickxyz777123%ProgramFiles%\PrivateVideo%ProgramFiles%\SiteEntry%ProgramFiles%\Sotfone%ProgramFiles%\SunPorn%ProgramFiles%\Video ActiveX Access%ProgramFiles%\Video ActiveX Object%ProgramFiles%\Video Add-on%ProgramFiles%\Video Add-on Setup%ProgramFiles%\Video Player ActiveX 1.05a Setup%ProgramFiles%\VideoHeaven%ProgramFiles%\VideoKey%ProgramFiles%\Web Technologies%ProgramFiles%\WebMediaViewer%UserProfile%\Start Menu\Programs\GimMePornFile name without pathaxdpfl.dllBEST ZOO PORN.urlcgmopenbho.dllcxbrk.dllfbxrqtwn.exeISMINI.EXELive Sex.lnkpdswin.dllSearchSettings.dllwww.youporn.com.lnkCLSID{0BD44AB1-76A7-4E05-92F4-4B065FE72BD6}{144A6B24-0EBC-4D89-BF09-A06A718E57B5}{15C7D7AD-A87A-4C0D-9D8B-637FCD3488EF}{1D1B2879-99FF-11E3-8D96-D7ACAC95952A}{3B7AAEB1-9F3D-4491-9C06-C7165CA8D058}{3F5A62E2-51F2-11D3-A075-CC7364CAE42A}{41eaa909-24be-4d24-877f-076a0576a6fd}{4937D5D1-2039-409A-BD83-FEC9B39B2356}{4D25F921-B9FE-4682-BF72-8AB8210D6D75}{51B15F5A-E98B-4658-B9CB-9307B74773A7}{56B38F40-4E70-11d4-A076-0080AD86BA2F}{7265100a-17e1-41bf-bd08-63b95a25a9c3}{878CA87E-BD03-4991-A1A8-A1EBEB50578F}{94A5C93F-BD18-4C46-B777-C94C145C3CAB}{9527D42F-D666-11D3-B8DD-00600838CD5F}{9C22FF6B-11B2-43B0-9F1A-8B0C209C1FAB}{A95B2816-1D7E-4561-A202-68C0DE02353A}{AA1F9DDB-E605-4ba6-81D4-E427DEE012AD}{BE1A344F-9FF5-4024-949B-52205E6DB2D0}{C14E6230-757D-4246-81CE-B34E2940C722}{CAF9D798-C659-4B9B-8E19-EE27C3D04EE7}{CFEE97A3-4911-444D-8BE8-E243A23D3DE2}{DF4E7A0C-E233-4906-B4C1-A404356541FF}{fce1c203-ff2b-4ec1-9983-e2900d29bbd8}Run keysmsiexec.exeHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}IE Custom ToolsIE Safety FeaturesInformation CenterSafety Alerter 2006Video ActiveX ObjectWindows Safety Alert

Additional Information

The following cookies were detected:
asecuremaskbasic-codecemcodecgayfetishiesafetywarningmaletube4freemalwarealarmmovieportal2008amoviesportal2008yyyprotectstandsafetyonlinepagethemymoviessitethesafetyfilesvcodec
The following URL's were detected:
2009dr.com592dr.cn9cdn.comcaoqn888.cnlaoqn.comnetcdn.com
Posted: April 28, 2011
Threat Metric
Threat Level: 9/10
Infected PCs 12,031

Leave a Reply

Please note that we are not able to assist with billing and support issues regarding SpyHunter or other products. If you're having issues with SpyHunter, please get in touch with SpyHunter customer support through your SpyHunter. If you have SpyHunter billing questions, we recommend you check the Billing FAQ. For general suggestions or feedback, contact us.

Adware.E404!ct

Adware.E404!ct Description

Adware.E404!ct is a undesired adware program that could be used to show a variety of pop-up advertisements. Adware.E404!ct mostly acts without a user's permission or awareness. Adware.E404!ct may install hidden software programs, probably with an aim to earn money for the author to recover development costs. Adware.E404!ct may track user's Internet activity and send other information from his/her computer including email addresses to advertisers. With this information, users' computer systems may be a target for pop-up/pop-under advertisements, additional toolbars, and spam.

Aliases


Trojan.Bredolab.Gen!Pac.3TROJ_FAKEAL.SMAC [TrendMicro]Trojan.Win32.Bredolab.Gen.pac (v) [Sunbelt]Sus/UnkPack-C [Sophos]Gen:Variant.Renos.21 [BitDefender]Trojan.Renos.Gen.15Mal/Cognac-A [Sophos]TrojanDownloader:Win32/Renos.DZ [Microsoft]W32/Heuristic-USU!Eldorado [Authentium]BKDR_ULTIMATE.CJ [TrendMicro]a variant of Win32/Kryptik.AGY [NOD32]Artemis!135C4E5F27D7 [McAfee+Artemis]Backdoor.Win32.UltimateDefender.yt [F-Secure]Trojan.Generic.2333096 [BitDefender]Generic14.ALSK [AVG]
More aliases (3123)

Use SpyHunter to Detect and Remove PC Threats

If you are concerned that malware or PC threats similar to Adware.E404!ct may have infected your computer, we recommend you start an in-depth system scan with SpyHunter. SpyHunter is an advanced malware protection and remediation application that offers subscribers a comprehensive method for protecting PCs from malware, in addition to providing one-on-one technical support service.

Download SpyHunter's Malware Scanner

Note: SpyHunter's free version is only for malware detection. If SpyHunter detects malware on your PC, you will need to purchase SpyHunter's malware tool to remove the malware threats. Learn more on SpyHunter. If you would like to uninstall SpyHunter for any reason, please follow these uninstall instructions. To learn more about our policies and practices, visit our EULA, Privacy Policy and Threat Assessment Criteria.

Why can't I open any program including SpyHunter? You may have a malware file running in memory that kills any programs that you try to launch on your PC. Tip: Download SpyHunter from a clean computer, copy it to a USB thumb drive, DVD or CD, then install it on the infected PC and run SpyHunter's malware scanner.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



msmsgs.exe File name: msmsgs.exe
Size: 5.48 KB (5481 bytes)
MD5: 91e2a8128cde75db5f1e8831a3cc615a
Detection count: 86
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 19, 2010
rxjddnvj.exe File name: rxjddnvj.exe
Size: 89.61 KB (89617 bytes)
MD5: 0e4ade1afcd2855a36e816d9f80e1f9c
Detection count: 76
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: February 18, 2010
gtxiz.exe File name: gtxiz.exe
Size: 14.33 KB (14336 bytes)
MD5: 373437440d4794d7f595d12b3931b6bb
Detection count: 75
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
lsass.exe File name: lsass.exe
Size: 351.74 KB (351744 bytes)
MD5: 3d270fc3baae30934b28d6d7da554acf
Detection count: 71
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: January 21, 2010
pg32.exe File name: pg32.exe
Size: 84.99 KB (84992 bytes)
MD5: 938e4635667ad33133f42221d0c347eb
Detection count: 70
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: January 8, 2010
kgqfweltgbn.dll File name: kgqfweltgbn.dll
Size: 307.2 KB (307200 bytes)
MD5: 43c814a008c3df5526f5dc3f5f748bce
Detection count: 51
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
qrzsyr.dll File name: qrzsyr.dll
Size: 19.45 KB (19456 bytes)
MD5: 4fd5a45a4a58d5a02e1fdc03bbd119f9
Detection count: 50
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
awlpwn.exe File name: awlpwn.exe
Size: 157.18 KB (157184 bytes)
MD5: 06872765fe8301f2715c818d8c02fecf
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: June 29, 2010
394559.dll File name: 394559.dll
Size: 13.31 KB (13312 bytes)
MD5: 39e90955020d8f5f2fea404f657bbfeb
Detection count: 34
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
286858.dll File name: 286858.dll
Size: 13.82 KB (13824 bytes)
MD5: 19fe7fcc23afa9ecaf1093d9f7241b1b
Detection count: 32
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
382077.dll File name: 382077.dll
Size: 13.31 KB (13312 bytes)
MD5: c0c37dec2ef1f6f1cb775c450a807764
Detection count: 30
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
nldfmtapowe.dll File name: nldfmtapowe.dll
Size: 241.66 KB (241664 bytes)
MD5: 4f05b3f81d5c5de25aeb8e4e12b1fa40
Detection count: 26
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
409271.dll File name: 409271.dll
Size: 13.31 KB (13312 bytes)
MD5: 4705e0b048cbf041516812a6a3966a5d
Detection count: 26
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
WinAvXX.exe File name: WinAvXX.exe
Size: 7.68 KB (7680 bytes)
MD5: c99587940a6109a9b6274329863fe69f
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
ywzE.tmp File name: ywzE.tmp
Size: 23.04 KB (23040 bytes)
MD5: 30dd0e96b116d9364882aa034e9b3b3d
Detection count: 22
File type: Temporary File
Mime Type: unknown/tmp
Group: Malware file
Last Updated: December 11, 2009
sysrest32.exe File name: sysrest32.exe
Size: 34.3 KB (34304 bytes)
MD5: 8076ca097c94e04e176c0819773a6386
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
ecjew.exe File name: ecjew.exe
Size: 23.55 KB (23552 bytes)
MD5: 6649a292ee55554b0a408c075341a85f
Detection count: 10
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: February 12, 2010
wmsdkns.exe File name: wmsdkns.exe
Size: 89.51 KB (89511 bytes)
MD5: 93520a7297b2be9a4878b2910c4f8e63
Detection count: 6
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: February 12, 2010
iftuyszv.exe File name: iftuyszv.exe
Size: 87.51 KB (87511 bytes)
MD5: 7cc85491b5a4c2c4ecbfdd4848a89b06
Detection count: 3
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: February 12, 2010

More files

Registry Modifications


The following newly produced Registry Values are:

Cookiesgayfetishmaletube4freemalwarealarmvcodecDirectory%AllUsersProfile%\Start Menu\Programs\patrickxxx777123%ProgramFiles%\DirectAccess%ProgramFiles%\GimMePorn%ProgramFiles%\LPVideoPlugin%ProgramFiles%\NetProject%ProgramFiles%\Online Image Add-on%ProgramFiles%\Online Video Add-on%ProgramFiles%\patrickxyz777123%ProgramFiles%\PrivateVideo%ProgramFiles%\SiteEntry%ProgramFiles%\Sotfone%ProgramFiles%\SunPorn%ProgramFiles%\Video ActiveX Access%ProgramFiles%\Video ActiveX Object%ProgramFiles%\Video Add-on%ProgramFiles%\Video Add-on Setup%ProgramFiles%\Video Player ActiveX 1.05a Setup%ProgramFiles%\VideoHeaven%ProgramFiles%\VideoKey%ProgramFiles%\Web Technologies%ProgramFiles%\WebMediaViewer%UserProfile%\Start Menu\Programs\GimMePornFile name without pathaxdpfl.dllBEST ZOO PORN.urlcgmopenbho.dllcxbrk.dllfbxrqtwn.exeISMINI.EXELive Sex.lnkpdswin.dllSearchSettings.dllwww.youporn.com.lnkCLSID{0BD44AB1-76A7-4E05-92F4-4B065FE72BD6}{144A6B24-0EBC-4D89-BF09-A06A718E57B5}{15C7D7AD-A87A-4C0D-9D8B-637FCD3488EF}{1D1B2879-99FF-11E3-8D96-D7ACAC95952A}{3B7AAEB1-9F3D-4491-9C06-C7165CA8D058}{3F5A62E2-51F2-11D3-A075-CC7364CAE42A}{41eaa909-24be-4d24-877f-076a0576a6fd}{4937D5D1-2039-409A-BD83-FEC9B39B2356}{4D25F921-B9FE-4682-BF72-8AB8210D6D75}{51B15F5A-E98B-4658-B9CB-9307B74773A7}{56B38F40-4E70-11d4-A076-0080AD86BA2F}{7265100a-17e1-41bf-bd08-63b95a25a9c3}{878CA87E-BD03-4991-A1A8-A1EBEB50578F}{94A5C93F-BD18-4C46-B777-C94C145C3CAB}{9527D42F-D666-11D3-B8DD-00600838CD5F}{9C22FF6B-11B2-43B0-9F1A-8B0C209C1FAB}{A95B2816-1D7E-4561-A202-68C0DE02353A}{AA1F9DDB-E605-4ba6-81D4-E427DEE012AD}{BE1A344F-9FF5-4024-949B-52205E6DB2D0}{C14E6230-757D-4246-81CE-B34E2940C722}{CAF9D798-C659-4B9B-8E19-EE27C3D04EE7}{CFEE97A3-4911-444D-8BE8-E243A23D3DE2}{DF4E7A0C-E233-4906-B4C1-A404356541FF}{fce1c203-ff2b-4ec1-9983-e2900d29bbd8}Run keysmsiexec.exeHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}IE Custom ToolsIE Safety FeaturesInformation CenterSafety Alerter 2006Video ActiveX ObjectWindows Safety Alert

Additional Information

The following cookies were detected:
asecuremaskbasic-codecemcodecgayfetishiesafetywarningmaletube4freemalwarealarmmovieportal2008amoviesportal2008yyyprotectstandsafetyonlinepagethemymoviessitethesafetyfilesvcodec
The following URL's were detected:
2009dr.com592dr.cn9cdn.comcaoqn888.cnlaoqn.comnetcdn.com

Leave a Reply

Please note that we are not able to assist with billing and support issues regarding SpyHunter or other products. If you're having issues with SpyHunter, please get in touch with SpyHunter customer support through your SpyHunter. If you have SpyHunter billing questions, we recommend you check the Billing FAQ. For general suggestions or feedback, contact us.